Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227991 5 警告 トレンドマイクロ - OfficeScan および tmufeng.dll の TMUFE におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0564 2012-12-20 19:28 2009-10-9 Show GitHub Exploit DB Packet Storm
227992 4.3 警告 サン・マイクロシステムズ - Sun Java System Application Server のデフォルト設定における認証の資格情報などを盗まれる脆弱性 CWE-16
環境設定
CVE-2010-0386 2012-12-20 19:28 2004-11-3 Show GitHub Exploit DB Packet Storm
227993 7.5 危険 TYPO3 Association - TYPO3 用の Clan Users List エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0343 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
227994 7.5 危険 TYPO3 Association - TYPO3 用の job_reports エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0342 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
227995 7.5 危険 TYPO3 Association - TYPO3 用の BB Simple Jobs エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0341 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
227996 7.5 危険 TYPO3 Association - TYPO3 用の MJS Event Pro エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0340 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
227997 7.5 危険 TYPO3 Association - TYPO3 用の User Links エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0339 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
227998 7.5 危険 TYPO3 Association - TYPO3 用の TT_Products エディタ エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0338 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
227999 7.5 危険 TYPO3 Association - TYPO3 用の tt_news Mail alert エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0337 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
228000 5 警告 TYPO3 Association - TYPO3 用の kiddog_mysqldumper エクステンションにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-0336 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
215861 6.1 MEDIUM
Network
gtranslate translate_wordpress_with_gtranslate The GTranslate plugin before 2.8.52 for WordPress has Reflected XSS via a crafted link. This requires use of the hreflang tags feature within a sub-domain or sub-directory paid option. CWE-79
Cross-site Scripting
CVE-2020-11930 2024-11-21 13:58 2020-04-20 Show GitHub Exploit DB Packet Storm
215862 9.8 CRITICAL
Network
davidlingren media_library_assistant In the media-library-assistant plugin before 2.82 for WordPress, Remote Code Execution can occur via the tax_query, meta_query, or date_query parameter in mla_gallery via an admin. NVD-CWE-noinfo
CVE-2020-11928 2024-11-21 13:58 2020-04-20 Show GitHub Exploit DB Packet Storm
215863 9.1 CRITICAL
Network
libming libming Ming (aka libming) 0.4.8 has a heap-based buffer over-read (2 bytes) in the function decompileIF() in decompile.c. CWE-125
Out-of-bounds Read
CVE-2020-11895 2024-11-21 13:58 2020-04-20 Show GitHub Exploit DB Packet Storm
215864 9.1 CRITICAL
Network
libming libming Ming (aka libming) 0.4.8 has a heap-based buffer over-read (8 bytes) in the function decompileIF() in decompile.c. CWE-125
Out-of-bounds Read
CVE-2020-11894 2024-11-21 13:58 2020-04-20 Show GitHub Exploit DB Packet Storm
215865 6.1 MEDIUM
Network
svg2png_project svg2png svg2png 4.1.1 allows XSS with resultant SSRF via JavaScript inside an SVG document. CWE-79
Cross-site Scripting
CVE-2020-11887 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
215866 8.1 HIGH
Network
opennms horizon
meridian
OpenNMS Horizon and Meridian allows HQL Injection in element/nodeList.htm (aka the NodeListController) via snmpParm or snmpParmValue to addCriteriaForSnmpParm. This affects Horizon before 25.2.1, Mer… CWE-89
SQL Injection
CVE-2020-11886 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
215867 7.2 HIGH
Network
wso2 enterprise_integrator WSO2 Enterprise Integrator through 6.6.0 has an XXE vulnerability where a user (with admin console access) can use the XML validator to make unintended network invocations such as SSRF via an uploade… CWE-611
CWE-918
XXE
Server-Side Request Forgery (SSRF) 
CVE-2020-11885 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
215868 5.3 MEDIUM
Network
divante storefront-api
vue-storefront-api
In Divante vue-storefront-api through 1.11.1 and storefront-api through 1.0-rc.1, as used in VueStorefront PWA, unexpected HTTP requests lead to an exception that discloses the error stack trace, wit… CWE-209
Information Exposure Through an Error Message
CVE-2020-11883 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
215869 6.5 MEDIUM
Network
kde kmail An issue was discovered in KDE KMail before 19.12.3. By using the proprietary (non-RFC6068) "mailto?attach=..." parameter, a website (or other source of mailto links) can make KMail attach local file… NVD-CWE-Other
CVE-2020-11880 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm
215870 6.5 MEDIUM
Network
gnome evolution An issue was discovered in GNOME Evolution before 3.35.91. By using the proprietary (non-RFC6068) "mailto?attach=..." parameter, a website (or other source of mailto links) can make Evolution attach … NVD-CWE-Other
CVE-2020-11879 2024-11-21 13:58 2020-04-18 Show GitHub Exploit DB Packet Storm